CVE-2023-27114
- EPSS 0.08%
- Veröffentlicht 10.03.2023 02:15:58
- Zuletzt bearbeitet 28.02.2025 17:15:14
radare2 v5.8.3 was discovered to contain a segmentation fault via the component wasm_dis at p/wasm/wasm.c.
CVE-2023-0302
- EPSS 0.05%
- Veröffentlicht 15.01.2023 01:15:15
- Zuletzt bearbeitet 21.11.2024 07:36:55
Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) in GitHub repository radareorg/radare2 prior to 5.8.2.
CVE-2022-4843
- EPSS 0.05%
- Veröffentlicht 29.12.2022 18:15:10
- Zuletzt bearbeitet 21.11.2024 07:36:03
NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.8.2.
CVE-2022-4398
- EPSS 0.22%
- Veröffentlicht 10.12.2022 20:15:10
- Zuletzt bearbeitet 21.11.2024 07:35:11
Integer Overflow or Wraparound in GitHub repository radareorg/radare2 prior to 5.8.0.
CVE-2020-27793
- EPSS 0.38%
- Veröffentlicht 19.08.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 05:21:50
An off-by-one overflow flaw was found in radare2 due to mismatched array length in core_java.c. This could allow an attacker to cause a crash, and perform a denail of service attack.
CVE-2020-27794
- EPSS 0.38%
- Veröffentlicht 19.08.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 05:21:50
A double free issue was discovered in radare2 in cmd_info.c:cmd_info(). Successful exploitation could lead to modification of unexpected memory locations and potentially causing a crash.
CVE-2020-27795
- EPSS 0.5%
- Veröffentlicht 19.08.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 05:21:50
A segmentation fault was discovered in radare2 with adf command. In libr/core/cmd_anal.c, when command "adf" has no or wrong argument, anal_fcn_data (core, input + 1) --> RAnalFunction *fcn = r_anal_get_fcn_in (core->anal, core->offset, -1); returns ...
CVE-2022-34502
- EPSS 0.14%
- Veröffentlicht 22.07.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 07:09:41
Radare2 v5.7.0 was discovered to contain a heap buffer overflow via the function consume_encoded_name_new at format/wasm/wasm.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted binary file.
CVE-2022-34520
- EPSS 0.13%
- Veröffentlicht 22.07.2022 15:15:08
- Zuletzt bearbeitet 21.11.2024 07:09:41
Radare2 v5.7.2 was discovered to contain a NULL pointer dereference via the function r_bin_file_xtr_load_buffer at bin/bfile.c. This vulnerability allows attackers to cause a Denial of Service (DOS) via a crafted binary file.
CVE-2022-1899
- EPSS 0.43%
- Veröffentlicht 26.05.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:41:42
Out-of-bounds Read in GitHub repository radareorg/radare2 prior to 5.7.0.